Total
7200 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2023-32044 | 1 Microsoft | 19 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 16 more | 2024-08-02 | 7.5 High |
Microsoft Message Queuing Denial of Service Vulnerability | ||||
CVE-2023-32039 | 1 Microsoft | 16 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 13 more | 2024-08-02 | 5.5 Medium |
Microsoft PostScript and PCL6 Class Printer Driver Information Disclosure Vulnerability | ||||
CVE-2023-32045 | 1 Microsoft | 19 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 16 more | 2024-08-02 | 7.5 High |
Microsoft Message Queuing Denial of Service Vulnerability | ||||
CVE-2023-32029 | 1 Microsoft | 5 365 Apps, Excel, Office and 2 more | 2024-08-02 | 7.8 High |
Microsoft Excel Remote Code Execution Vulnerability | ||||
CVE-2023-32017 | 1 Microsoft | 19 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 16 more | 2024-08-02 | 7.8 High |
Microsoft PostScript Printer Driver Remote Code Execution Vulnerability | ||||
CVE-2023-32035 | 1 Microsoft | 19 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 16 more | 2024-08-02 | 6.5 Medium |
Remote Procedure Call Runtime Denial of Service Vulnerability | ||||
CVE-2023-31489 | 3 Fedoraproject, Frrouting, Redhat | 3 Fedora, Frrouting, Enterprise Linux | 2024-08-02 | 5.5 Medium |
An issue found in Frrouting bgpd v.8.4.2 allows a remote attacker to cause a denial of service via the bgp_capability_llgr() function. | ||||
CVE-2023-31239 | 1 Fujielectric | 1 V-server | 2024-08-02 | 7.8 High |
Stack-based buffer overflow vulnerability in V-Server v4.0.15.0 and V-Server Lite v4.0.15.0 and earlier allows an attacker to execute arbitrary code by having user open a specially crafted VPR file. | ||||
CVE-2023-30985 | 1 Siemens | 1 Solid Edge Se2023 | 2024-08-02 | 3.3 Low |
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 3), Solid Edge SE2023 (All versions < V223.0 Update 2). Affected applications contain an out of bounds read past the end of an allocated buffer while parsing a specially crafted OBJ file. This vulnerability could allow an attacker to disclose sensitive information. (ZDI-CAN-19426) | ||||
CVE-2023-30546 | 1 Contiki-ng | 1 Contiki-ng | 2024-08-02 | 9.8 Critical |
Contiki-NG is an operating system for Internet of Things devices. An off-by-one error can be triggered in the Antelope database management system in the Contiki-NG operating system in versions 4.8 and prior. The problem exists in the Contiki File System (CFS) backend for the storage of data (file os/storage/antelope/storage-cfs.c). In the functions `storage_get_index` and `storage_put_index`, a buffer for merging two strings is allocated with one byte less than the maximum size of the merged strings, causing subsequent function calls to the cfs_open function to read from memory beyond the buffer size. The vulnerability has been patched in the "develop" branch of Contiki-NG, and is expected to be included in the next release. As a workaround, the problem can be fixed by applying the patch in Contiki-NG pull request #2425. | ||||
CVE-2023-30362 | 1 Libcoap | 1 Libcoap | 2024-08-02 | 7.5 High |
Buffer Overflow vulnerability in coap_send function in libcoap library 4.3.1-103-g52cfd56 fixed in 4.3.1-120-ge242200 allows attackers to obtain sensitive information via malformed pdu. | ||||
CVE-2023-30259 | 1 Librecad | 1 Librecad | 2024-08-02 | 5.5 Medium |
A Buffer Overflow vulnerability in importshp plugin in LibreCAD 2.2.0 allows attackers to obtain sensitive information via a crafted DBF file. | ||||
CVE-2023-30084 | 1 Libming | 1 Libming | 2024-08-02 | 5.5 Medium |
An issue found in libming swftophp v.0.4.8 allows a local attacker to cause a denial of service via the stackVal function in util/decompile.c. | ||||
CVE-2023-29417 | 1 Bzip3 Project | 1 Bzip3 | 2024-08-02 | 6.5 Medium |
An issue was discovered in libbzip3.a in bzip3 1.2.2. There is a bz3_decompress out-of-bounds read in certain situations where buffers passed to bzip3 do not contain enough space to be filled with decompressed data. NOTE: the vendor's perspective is that the observed behavior can only occur for a contract violation, and thus the report is invalid. | ||||
CVE-2023-29933 | 1 Llvm | 1 Llvm | 2024-08-02 | 5.5 Medium |
llvm-project commit bd456297 was discovered to contain a segmentation fault via the component mlir::Block::getArgument. | ||||
CVE-2023-29934 | 1 Llvm | 1 Llvm | 2024-08-02 | 5.5 Medium |
llvm-project commit 6c01b5c was discovered to contain a segmentation fault via the component mlir::Type::getDialect(). | ||||
CVE-2023-29941 | 1 Llvm | 1 Llvm | 2024-08-02 | 5.5 Medium |
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component matchAndRewriteSortOp<mlir::sparse_tensor::SortOp>(mlir::sparse_tensor::SortOp. | ||||
CVE-2023-29939 | 1 Llvm | 1 Llvm | 2024-08-02 | 5.5 Medium |
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::spirv::TargetEnv::TargetEnv(mlir::spirv::TargetEnvAttr). | ||||
CVE-2023-29942 | 1 Llvm | 1 Llvm | 2024-08-02 | 5.5 Medium |
llvm-project commit a0138390 was discovered to contain a segmentation fault via the component mlir::Type::isa<mlir::LLVM::LLVMVoidType. | ||||
CVE-2023-29576 | 1 Axiosys | 1 Bento4 | 2024-08-02 | 5.5 Medium |
Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_TrunAtom::SetDataOffset(int) function in Ap4TrunAtom.h. |